
Outline the six modules aligned to the 70-346 exam, cover provisioning Office 365, directory sync and federated identities, and plan for security, identity management, and monitoring.
Configure and provision a new Office 365 tenant, including name and region. Add custom domains, transfer DNS ownership, plan a pilot, designate pilot users, and test health readiness.
Discover how Office 365 delivers cloud-based software as a service, enabling anywhere access to online Word, Excel, PowerPoint, SharePoint, and licensing options.
Provision tenants in Office 365 by exploring business plans, choosing between small business and enterprise options like E-3, and initiating a free trial with domain setup.
Explore the Office 365 admin center to monitor service health, manage users and domains, and configure licensing, billing, and provisioning across Exchange Online, SharePoint, and Azure AD.
Finalize the office 365 setup by choosing basic deployment or hybrid options, verify your domain, and configure dns records with go daddy to proceed with user and mailbox provisioning.
Verify domain ownership by adding a txt record in the dns zone file, propagate across the internet, then complete Office 365 setup.
Update user accounts, opt for bulk import if needed, and configure required DNS records for Outlook, MX, and SIP to enable instant messaging and online meetings in Office 365.
Manage billing and subscriptions in the admin center, review the E3 trial, pricing, and status, extend or cancel trials, roll over to purchase, and add new subscriptions for departments.
Manage Office 365 licenses from the admin panel, track 25 licenses on the E3 plan, and view each user's assigned licenses and apps such as desktop Office and SharePoint.
Add and configure custom domains in the admin center, and verify ownership. Manage DNS records, including text or MX records, and learn domain purchase options like GoDaddy.
Define a domain's purpose in the admin center by selecting or unchecking services like exchange online and link online to tailor email, messaging, and collaboration for your domain.
Move ownership of your domain's DNS to Office 365 by updating name servers and configuring custom DNS settings. Learn when GoDaddy setup applies and how to migrate from external hosts.
Plan a pilot by designating pilot users, identifying workloads that don’t require migration, and creating a test plan; connect pilot emails and assess Office 365 health readiness with connectivity tool.
Plan a pilot by creating a thorough test plan before rollout, ensuring DNS, Exchange information, and SharePoint readiness, plus pilot-user selection and data migration decisions with clear timeframes.
Open the admin center to run the Office 365 health readiness and connectivity checks, assessing on-premises and cloud configurations to plan integration or migration to Office 365.
Run the Office 365 health-readiness and connectivity checks tool to scan your computer’s configuration, producing a report on domains, network, and SharePoint, and discuss directory synchronization with on‑premises Active Directory.
Plan and implement networking and security for Office 365, configure dns records for exchange, link, and sharepoint, enable client connectivity, manage rights management, protect documents, and reset passwords.
Learn how to create and manage DNS records for Exchange Online, Lync Online, and SharePoint Online in Office 365, including domain verification and manual DNS entries.
Enable Office 365 client access by opening 443 and UDP ports for Link and SharePoint, and ensure proxies and gateways permit internet connectivity; test with Microsoft's connectivity analyzer.
Use the Office 365 connectivity analyzer in the admin center to run diagnostics, test Outlook mail flow, review DNS and MX records, and save results for audits and continuity plans.
Activate rights management in Office 365 to protect documents and emails, restrict access, and integrate protection with Office apps like Word, Excel, and SharePoint.
Explore how Office 365 rights management integrates with Word to protect documents using restricted access, confidential status, and read only options, and save to SharePoint.
Explore role-based access control in Office 365 by assigning five built-in admin roles—global, billing, password, service, and user management—and learn how to grant and monitor these permissions.
Open the admin center, go to active users, assign roles such as global administrator or password administrator to specific users, and set alternate email and sign-in status to control access.
Learn to manage cloud identities by configuring password management, expiration policies, and resets, and multi-factor authentication, use administration center and PowerShell to manage users, groups, licenses, and hard deletes.
Configure password expiration policies in the Office 365 admin center, setting max age and notification timing (e.g., 60 days with 10 days’ notice) to balance security and usability.
Learn how to enforce Office 365 password complexity with PowerShell, applying three of four criteria (uppercase, lowercase, number, special character) to require strong passwords.
Reset a user password in the Office 365 admin center, trigger an emailed temporary password, and require a change at next login; review password expiration policies.
Use csv bulk import to add multiple Office 365 users with a template. Fill headers like user name, first name, last name, display name; set licenses.
Explore security groups in the admin center to organize users and assign permissions. Create, edit, and remove group members, and rename groups to reflect roles like help desk.
Learn to perform a soft delete of a user in the Office 365 admin center, restore from deleted users within 30 days, and distinguish it from hard delete.
Learn how to enable and enforce multi-factor authentication in office 365, targeting global administrators and other users, using factors like passwords, smart cards, tokens, or biometrics.
Explore using PowerShell to manage Office 365 identities, including connecting via admin credentials and configuring password expiration rules, such as never expire for service accounts while noting best practices.
Connect to Office 365 via PowerShell, retrieve user data, and set passwords to never expire for accounts, with true/false toggles, highlighting service accounts.
Connect to Office 365 with the MS Online service and create a new user via PowerShell, assigning a UPN, display name, and temporary password before applying a license.
Bulk create Office 365 users with PowerShell by importing a CSV, looping through records, and provisioning accounts with temporary passwords before license assignment.
Learn to perform bulk updates of Office 365 user properties using a CSV file and PowerShell, matching by UPN and applying changes like city, state, or job title.
Connect to Office 365 with PowerShell, identify unlicensed users, check available licenses, and assign a single enterprise pack license to one user.
Use PowerShell to bulk assign Office 365 licenses to unlicensed users by listing unlicensed accounts, setting on-site usage location, and applying licenses from the enterprise pack.
Master Azure Active Directory identities with Windows PowerShell by installing the Azure AD module, connecting to online services, and managing users, groups, licenses, and restoration of deleted users.
connect to azure active directory and list soft-deleted users to obtain their object IDs. then hard delete those users from office 365 using powershell, forcing deletion from the recycle bin.
Explore implementing and managing on-premises Active Directory with directory synchronization, including setting up synchronization, filtering, password synchronization, and managing users and groups across multiple forests.
Explore DirSync between on-premises Active Directory and cloud services like Office 365, including one-way and two-way hybrid setups, prerequisites, and server requirements.
Prepare on-premises Active Directory for DirSync by configuring alternate UPN suffixes, cleaning up AD data, and filtering objects before synchronizing with Office 365.
Activate directory synchronization in the admin center to connect your on premises Active Directory with Office 365. Install the sync tool, run remediation, verify, and enable user synchronization.
Explore installing and configuring DirSync on a local server or Azure virtualization to synchronize on-premises Active Directory with Office 365, with filters and optional password synchronization.
Explore how Derse Sync uses soft filtering to reconcile on-premises Active Directory and Office 365 accounts, using time-stamp comparisons and password synchronization across environments.
Explain DirSync between on-premises Active Directory and Office 365, including prerequisites, password sync every two minutes, three-hour sync, and optional forced sync via PowerShell; verify results in the admin portal.
Install DirSync on a local domain controller, configure Office 365 directory synchronization with AD credentials and enterprise admin, and start the initial sync, which may take up to 24 hours.
Demonstrates installing DirSync on premises and pushing user data to Office 365, verifying synchronization with Active Directory, and assigning licenses, emails, and group memberships.
Learn to implement and manage federated identities and single sign-on with Active Directory Federation Services, including namespaces, certificates, proxies, MFA, network requirements, and certificate lifecycle.
Plan and prepare for implementing Active Directory Federation Services by assessing goals, resources, DNS, certificates, and network requirements, and deploying a federation server farm with proper trust.
separate internal and external dns namespaces and implement split-brain dns to secure access; deploy ssl certificates on server and proxy, favoring third-party certificates over self-signed.
Plan ad fs internal topologies and dependencies by forecasting user growth, establishing a two-server farm for high availability, choosing Windows integrated database or SQL Server, and provisioning federation servers.
Explore how AD FS proxy servers sit at the perimeter to offload requests from federation servers, obtain tokens, and enable access to Office 365.
Ensure TCP/IP and DNS are in place, with DNS essential for Active Directory and DFS, and configure internal and perimeter DNS to resolve the NLB cluster name to its IP.
Explore multi-factor authentication concepts—from password plus smart card or PIN to biometrics and text codes—and apply claim rules to filter proxy requests by geography and dfs.
Install and manage AD FS servers using a dedicated service account with a strong, non-expiring password. Explore federated domain conversion, farm configuration for high availability, and certificate lifecycle management.
learn how to convert a standard domain to a federated domain using PowerShell, and manage certificate lifecycles to ensure secure communications between clients, proxies, and federated servers.
Create and configure the first federation server and server farm for AD FS, using a dedicated managed service account, a certificate and private key, and WIOD or SQL database options.
Install AD FS, review endpoints and certificates, and highlight the token signing certificate and token service enabling secure access to services via the AD FS management portal.
Configure AD FS proxy servers in a perimeter network with split-brain DNS, install the necessary roles, features, and certificates, and implement load balancing for high availability with a trusted certificate.
Install the web application proxy from remote access, configure it with the AD FS server and certificate, then customize the login page and prepare the proxy in a virtual machine.
Install and configure a web application proxy for the adfs federation, add remote access roles on a dedicated proxy server, and automate the setup with a powershell command.
demonstrates installing AD FS proxy servers via remote access management, enabling single sign-on across enterprise services with the proxy in the DMZ.
Monitor and troubleshoot Office 365 availability and usage by reviewing service and mail protection reports, logging, and email hygiene; track service health with the Office 365 management pack dashboards.
Explore built-in Office 365 reports in the admin center to monitor Exchange Online mail, SharePoint, OneDrive, auditing, and service degradation, and download mail protection reports for deeper, queryable insights.
Explore Office 365 admin center reports, including active vs. deleted mailboxes, day-by-day mailbox trends, and auditing data; view Exchange Online reports and configure feedback, rules, and DLP.
Demonstrates how to access the protection report in download center, install the tool, and view Office 365 mail protection data in Excel, including spam, DLP, and queries for Exchange Online.
Explore how to monitor service health in Office 365 via the admin center dashboard, view health details, history, and messages to spot issues affecting Exchange Online and link.
Learn what an RSS feed is and how it aggregates updates, then access the Office 365 admin center to view service health, click the RSS icon, and subscribe in Outlook.
Explore the Office 365 management pack for System Center Operations Manager (SCOM), showing how SCOM monitors Office 365 and runs PowerShell reports for Exchange Online and SharePoint.
Use Windows PowerShell cmdlets to access Exchange Online data, view mailboxes, and generate mailbox usage reports, complementing admin center insights and other Office 365 reports.
Isolate service interruptions by creating a service request and using the remote connectivity analyzer and hybrid free busy troubleshooter to diagnose connectivity issues.
Submit a service request in the Office 365 admin center, choosing categories and detailing issues to receive timely support and updates by email.
Explore the transport reliability IP probe (TRIPP) to test connectivity, measure response times, RTT, and bandwidth to the Office 365 link online service, and assess ports and routes.
Explore the hybrid free busy troubleshooter, which provides troubleshooting steps and an overview, and access links to tools like the remote connectivity analyzer for hybrid Office 365 environments.
Explore MOSDAL, a troubleshooting diagnostic tool for Office 365 that generates log files. It requires .NET 4.0 and Azure AD PowerShell, and ties into admin center reports and service health.
Complete the Office 365 course by reviewing six modules and the essential components for the exam. Enjoy the course and good luck.
This course is intended for IT professionals who take part in evaluating, planning, deploying, and operating the Office 365 services, including its dependencies, requirements, and supporting technologies.
This course prepares you for the MS-346 certification exam.
This course provides the knowledge and understanding for some of these important job functions:
Provision Office 365
Plan and implement networking and security in Office 365
Manage cloud identities
Implement and manage identities by using DirSync
Implement and manage federated identities (single sign-on [SSO])
Monitor and troubleshoot Office 365 availability and usage
We create the highest quality course curriculum possible, ensuring you receive the training and knowledge needed to succeed.